VYPR
Medium severity4.2NVD Advisory· Published Sep 4, 2023· Updated Jun 17, 2026

CVE-2023-20843

CVE-2023-20843

Description

In imgsys_cmdq, there is a possible out of bounds read due to a missing valid range checking. This could lead to local information disclosure with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS07340119; Issue ID: ALPS07340119.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • cpe:2.3:a:linuxfoundation:yocto:4.0:*:*:*:*:*:*:*
  • cpe:2.3:a:mediatek:iot_yocto:23.0:*:*:*:*:*:*:*
  • Google/Android2 versions
    cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
  • cpe:2.3:o:linux:linux_kernel:6.1:-:*:*:*:*:*:*
  • MediaTek, Inc./MT6895, MT6897, MT6983, MT8188, MT8195, MT8395, MT8781v5
    Range: Android 11.0, 12.0 / Linux 6.1 / IOT-v23.0 / Yocto 4.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.